Security News > 2023 > April > ChatGPT Security: OpenAI's Bug Bounty Program Offers Up to $20,000 Prizes

OpenAI, the company behind the massively popular ChatGPT AI chatbot, has launched a bug bounty program in an attempt to ensure its systems are "Safe and secure."
Other prohibited categories are denial-of-service attacks, brute-forcing OpenAI APIs, and demonstrations that aim to destroy data or gain unauthorized access to sensitive information.
What's in scope are defects in OpenAI APIs, ChatGPT, third-party integrations, public exposure of OpenAI API keys, and any of the domains operated by the company.
The development comes in response to OpenAI patching account takeover and data exposure flaws in the platform, prompting Italian data protection regulators to take a closer look at the platform.
"OpenAI will have to draft and make available, on its website, an information notice describing the arrangements and logic of the data processing required for the operation of ChatGPT along with the rights afforded to data subjects," the Garante said.
As part of efforts to exercise data rights, both users and non-users of the service can request for "Rectification of their personal data" in cases where it's incorrectly generated by the service, or alternatively, erase the data if corrections are technically infeasible.
News URL
https://thehackernews.com/2023/04/chatgpt-security-openais-bug-bounty.html
Related news
- Microsoft expands Copilot bug bounty targets, adds payouts for even moderate messes (source)
- OpenAI Bans Accounts Misusing ChatGPT for Surveillance and Influence Campaigns (source)
- OpenAI bans ChatGPT accounts used by North Korean hackers (source)
- OpenAI says Deep Research is coming to ChatGPT free "very soon" (source)
- OpenAI's $20 ChatGPT Plus is now free for students until the end of May (source)
- OpenAI tests watermarking for ChatGPT-4o Image Generation model (source)
- EncryptHub's dual life: Cybercriminal vs Windows bug-bounty researcher (source)